Multiple Products vulnerabilities
1 published alerts for Mozilla Multiple Products.
Actively exploited (KEV)
Mozilla Multiple Products Remote Code Execution Vulnerability
Mozilla Multiple Products is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2010-3765). Mozilla Firefox, SeaMonkey, and Thunderbird contain an unspecified vulnerability when JavaScript is enabled. This allows remote attackers to execute arbitrary code via vectors related to nsCSSFrameConstructor::ContentAppended, the appendChild method, incorrect index tracking, and the creation of multiple frames, which triggers memory corruption. CISA remediation due date: 2025-10-27. If you need help checking exposure, call (864) 335-9223.